Vulnerabilities > CVE-2003-1572 - Unspecified vulnerability in SUN JMF

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
sun
critical
nessus

Summary

Sun Java Media Framework (JMF) 2.1.1 through 2.1.1c allows unsigned applets to cause a denial of service (JVM crash) and read or write unauthorized memory locations via the ReadEnv class, as demonstrated by reading environment variables using modified .data and .size fields.

Vulnerable Configurations

Part Description Count
Application
Sun
4

Nessus

NASL familyWindows
NASL idJMF_PRIVS_ESCALATION.NASL
descriptionThe remote host is using Sun Microsystems
last seen2020-06-01
modified2020-06-02
plugin id11635
published2003-05-19
reporterThis script is Copyright (C) 2003-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/11635
titleSun Java Media Framework (JMF) Arbitrary Code Execution